Author Archive

MS Patches Holes in Content Management Server

August 8, 2002

Three security vulnerabilities in Microsoft’s Content Management Server 2001 have been announced and patched in security bulletin MS02-041. The most critical hole is an exploitable buffer overflow in user authentication that could give a remote attacker Administrative privileges. The other two problems are also serious: an SQL injection vulnerability, and bugs in the authoring function […]

Windows 2000 SP3 Available

August 1, 2002

Microsoft has released Service Pack 3 for Windows 2000, which contains a slew of bug fixes and updates, including a new Automatic Update system for future delivery of critical patches. A list of security fixes included in the SP indicates that nearly 100 holes have been fixed, many of which were not covered in bulletins […]

Multiple Vulnerabilities in OpenSSL

July 30, 2002

Update: CERT also has released advisory CA-2002-23 with vendor-specific patch links for major operating systems. The OpenSSL group has issued a security advisory for five vulnerabilities, including a remote overflow in the SSL2 client master key handling which has been proven to be exploitable. Versions 0.9.6.d and earlier, as well as 0.9.7-beta2 and earlier, are […]

« Older Entries   Newer Entries »